- 1、本文档共32页,可阅读全部内容。
- 2、有哪些信誉好的足球投注网站(book118)网站文档一经付费(服务费),不意味着购买了该文档的版权,仅供个人/单位学习、研究之用,不得用于商业用途,未经授权,严禁复制、发行、汇编、翻译或者网络传播等,侵权必究。
- 3、本站所有内容均由合作方或网友上传,本站不对文档的完整性、权威性及其观点立场正确性做任何保证或承诺!文档内容仅供研究参考,付费前请自行鉴别。如您付费,意味着您自己接受本站规则且自行承担风险,本站不退款、不进行额外附加服务;查看《如何避免下载的几个坑》。如果您已付费下载过本站文档,您可以点击 这里二次下载。
- 4、如文档侵犯商业秘密、侵犯著作权、侵犯人身权等,请点击“版权申诉”(推荐),也可以打举报电话:400-050-0827(电话支持时间:9:00-18:30)。
查看更多
网络技术专业教学资源库
Page PAGE 2 of NUMPAGES 31
Page PAGE 1 of NUMPAGES 31
国家高等职业教育网络技术专业教学资源库
CCNA安全物理设备实操
学生实验手册
CCNA安全实操实验1
Chapter 6 Lab A: Securing Layer 2 Switches
Chapter 6 Lab A: Securing Layer 2 Switches
Topology
IP Addressing Table
Device
Interface
IP Address
Subnet Mask
Default Gateway
Switch Port
R1
Fa0/1
N/A
S1 FA0/5
S1
VLAN 1
N/A
N/A
S2
VLAN 1
N/A
N/A
PC-A
NIC
0
S1 FA0/6
PC-B
NIC
1
S2 FA0/18
Objectives
Part 1: Configure Basic Switch Settings
Build the topology.
Configure the host name, IP address, and access passwords.
Part 2: Configure SSH Access to the Switches
Configure SSH access on the switch.
Configure an SSH client to access the switch.
Verify the configuration.
Part 3: Secure Trunks and Access Ports
Configure trunk port mode.
Change the native VLAN for trunk ports.
Verify trunk configuration.
Enable storm control for broadcasts.
Configure access ports.
Enable PortFast and BPDU guard.
Verify BPDU guard.
Enable root guard.
Configure and verify port security.
Disable unused ports.
Move ports from default VLAN 1 to alternate VLAN.
Configure the PVLAN Edge Feature on a port.
Part 4: Configure SPAN and Monitor Traffic
Configure Switched Port Analyzer (SPAN).
Monitor port activity using Wireshark.
Analyze a sourced attack.
Background
The Layer 2 infrastructure consists mainly of interconnected Ethernet switches. Most end-user devices, such as computers, printers, IP phones and other hosts, connect to the network via Layer 2 access switches. As a result, switches can present a network security risk. Similar to routers, switches are subject to attack from malicious internal users. The switch Cisco IOS software provides many security features that are specific to switch functions and protocols.
In this lab, you configure SSH access and Layer 2 security for switches S1 and S2. You also configure various switch protection measures, including access port security, switch storm control, and Spanning Tree Protocol (STP) features such as BPDU guard and root g
您可能关注的文档
- 计算机建模与快速成型 计算机建模与快速成型 《计算机建模与快速成型》教材.docx
- 计算机视觉 模块1:绪论 智能图像基准数据集.docx
- 计算机视觉 模块6:人体关键点检测 人体关键点检测实战.docx
- 计算机视觉 模块8:度量学习 度量学习实战.docx
- 计算机网络安全技术与实施(旧) 任务1.2基于SnifferPro进行协议、模拟攻击分析 RG-PATS协议分析仪使用方法.docx
- 计算机网络安全技术与实施(旧) 任务1.2基于SnifferPro进行协议、模拟攻击分析 Wireshark简明使用教程.doc
- 计算机网络基础 DHCP服务器的配置 实验-DHCP服务器配置.docx
- 计算机网络基础 计算机网络基础 实验八-路由环路排错实验-学生结果范例1.docx
- 计算机网络基础 网络防病毒技术 参考资料-全球史上破坏力最为惊人的十大病毒.docx
- 计算机网络系统集成项目(工程项目案例及实践) 实际项目案例模拟仿真 计算机网络系统集成项目(工程项目案例及实践)-实习案例三十五.doc
文档评论(0)